Humanitarian aid-distribution programs help bring physical goods (e.g., food, blankets) to people in need. Traditional paper-based solutions to support aid distribution do not scale to large populations and are hard to secure. Existing digital solutions solve these issues, at the cost of collecting large amount of personal information. Failing to protect aid recipients' privacy can result on harms for them and enables surveillance in the long run. In collaboration with the International Committee of the Red Cross, we build a safe aid-distribution system in this paper. We first systematize the requirements such a system should satisfy and then propose a decentralized solution based on the use of tokens. Our design provides strong scalability and accountability, at the same time, ensures privacy by design. We provide two instantiations of our design, on a smart card and on a smartphone. We formally prove the security and privacy properties of our design, and empirically show that the two instantiations can scale to hundreds of thousands of recipients.
翻译:人道主义援助分配计划有助于向需要帮助的人提供物资(如食品、毛毯)。传统的纸质解决方案无法扩展到庞大的人口数量,而且难以保护。现有的数字解决方案解决了这些问题,但是需要收集大量个人信息以此来牺牲个人隐私。如果未能保护援助接收者的隐私,可能会对援助接收者造成伤害并最终导致监视。本文与国际红十字会合作,构建了一个安全的援助分配系统。我们首先系统化了该系统应满足的需求,然后提出了一种基于代币的去中心化解决方案。我们的设计提供了强大的可扩展性和问责制,同时通过设计确保了隐私保护。我们提供了两种我们设计的实现,一种是智能卡,另一种是智能手机。我们正式证明了我们的设计的安全和隐私特性,并验证了两种实现方式在数十万接收者规模下的可扩展性。